Configuring OneLogin as an SAML Identity Provider is done by configuring a OneLogin Authentication server on an SMA appliance.
To configure OneLogin as an SMA Authentication Server
In the AMC, navigate to System Configuration > Authentication Servers.
Under Authentication servers, click the + (New) icon. The Add Authentication Server page displays.
Select SAML 2.0 Identity Provider.
Click Continue.... The Edit Authentication Server page displays.
The steps that follow explain how to configure the fields in the Configure Authentication Server .
In the Name field, enter OneLogin_IDP.
https://appliance.company.com
.In the Server ID field, enter the Issuer URL from the Configuration tab of the SonicWall VPN page. For example,
.https://app.onelogin.com/saml/metadata/xxxx
In the Authentication service URL field, enter the IDP Login URL from the SSO tab of the SonicWall VPN page. For example,
.https://company.onelogin.com/trust/saml2/http-post/sso/xxxx
In the Logout service URL field, enter the SLO Endpoint (HTTP) from the SSO tab of the SonicWall VPN page. For example,
.https://company.onelogin.com/trust/saml2/http-redirect/slo/xxxx
From the Trust the following certificate drop-down menu, select the X.509 Certificate.
You must first download and install this certificate before it can appear in this drop-down menu. See Downloading a Certificate for instructions on how to do this.
Click Save.